1 /* SPDX-License-Identifier: LGPL-2.1+ */
3 #include "alloc-util.h"
4 #include "bus-common-errors.h"
5 #include "bus-internal.h"
7 #include "dbus-cgroup.h"
9 #include "dbus-scope.h"
10 #include "dbus-unit.h"
11 #include "dbus-util.h"
14 #include "selinux-access.h"
17 int bus_scope_method_abandon(sd_bus_message
*message
, void *userdata
, sd_bus_error
*error
) {
24 r
= mac_selinux_unit_access_check(UNIT(s
), message
, "stop", error
);
28 r
= bus_verify_manage_units_async(UNIT(s
)->manager
, message
, error
);
32 return 1; /* No authorization for now, but the async polkit stuff will call us again when it has it */
36 return sd_bus_error_setf(error
, BUS_ERROR_SCOPE_NOT_RUNNING
, "Scope %s is not running, cannot abandon.", UNIT(s
)->id
);
40 return sd_bus_reply_method_return(message
, NULL
);
43 static BUS_DEFINE_PROPERTY_GET_ENUM(property_get_result
, scope_result
, ScopeResult
);
45 const sd_bus_vtable bus_scope_vtable
[] = {
46 SD_BUS_VTABLE_START(0),
47 SD_BUS_PROPERTY("Controller", "s", NULL
, offsetof(Scope
, controller
), SD_BUS_VTABLE_PROPERTY_EMITS_CHANGE
),
48 SD_BUS_PROPERTY("TimeoutStopUSec", "t", bus_property_get_usec
, offsetof(Scope
, timeout_stop_usec
), SD_BUS_VTABLE_PROPERTY_CONST
),
49 SD_BUS_PROPERTY("Result", "s", property_get_result
, offsetof(Scope
, result
), SD_BUS_VTABLE_PROPERTY_EMITS_CHANGE
),
50 SD_BUS_SIGNAL("RequestStop", NULL
, 0),
51 SD_BUS_METHOD("Abandon", NULL
, NULL
, bus_scope_method_abandon
, SD_BUS_VTABLE_UNPRIVILEGED
),
55 static int bus_scope_set_transient_property(
58 sd_bus_message
*message
,
60 sd_bus_error
*error
) {
68 flags
|= UNIT_PRIVATE
;
70 if (streq(name
, "TimeoutStopUSec"))
71 return bus_set_transient_usec(UNIT(s
), name
, &s
->timeout_stop_usec
, message
, flags
, error
);
73 if (streq(name
, "PIDs")) {
74 _cleanup_(sd_bus_creds_unrefp
) sd_bus_creds
*creds
= NULL
;
77 r
= sd_bus_message_enter_container(message
, 'a', "u");
85 r
= sd_bus_message_read(message
, "u", &upid
);
93 r
= sd_bus_query_sender_creds(message
, SD_BUS_CREDS_PID
, &creds
);
98 r
= sd_bus_creds_get_pid(creds
, &pid
);
104 r
= unit_pid_attachable(UNIT(s
), pid
, error
);
108 if (!UNIT_WRITE_FLAGS_NOOP(flags
)) {
109 r
= unit_watch_pid(UNIT(s
), pid
, false);
110 if (r
< 0 && r
!= -EEXIST
)
117 r
= sd_bus_message_exit_container(message
);
126 } else if (streq(name
, "Controller")) {
127 const char *controller
;
129 /* We can't support direct connections with this, as direct connections know no service or unique name
130 * concept, but the Controller field stores exactly that. */
131 if (sd_bus_message_get_bus(message
) != UNIT(s
)->manager
->api_bus
)
132 return sd_bus_error_setf(error
, SD_BUS_ERROR_NOT_SUPPORTED
, "Sorry, Controller= logic only supported via the bus.");
134 r
= sd_bus_message_read(message
, "s", &controller
);
138 if (!isempty(controller
) && !service_name_is_valid(controller
))
139 return sd_bus_error_setf(error
, SD_BUS_ERROR_INVALID_ARGS
, "Controller '%s' is not a valid bus name.", controller
);
141 if (!UNIT_WRITE_FLAGS_NOOP(flags
)) {
142 r
= free_and_strdup(&s
->controller
, empty_to_null(controller
));
153 int bus_scope_set_property(
156 sd_bus_message
*message
,
157 UnitWriteFlags flags
,
158 sd_bus_error
*error
) {
167 r
= bus_cgroup_set_property(u
, &s
->cgroup_context
, name
, message
, flags
, error
);
171 if (u
->load_state
== UNIT_STUB
) {
172 /* While we are created we still accept PIDs */
174 r
= bus_scope_set_transient_property(s
, name
, message
, flags
, error
);
178 r
= bus_kill_context_set_transient_property(u
, &s
->kill_context
, name
, message
, flags
, error
);
186 int bus_scope_commit_properties(Unit
*u
) {
189 unit_invalidate_cgroup_members_masks(u
);
190 unit_realize_cgroup(u
);
195 int bus_scope_send_request_stop(Scope
*s
) {
196 _cleanup_(sd_bus_message_unrefp
) sd_bus_message
*m
= NULL
;
197 _cleanup_free_
char *p
= NULL
;
205 p
= unit_dbus_path(UNIT(s
));
209 r
= sd_bus_message_new_signal(
210 UNIT(s
)->manager
->api_bus
,
213 "org.freedesktop.systemd1.Scope",
218 return sd_bus_send_to(UNIT(s
)->manager
->api_bus
, m
, s
->controller
, NULL
);
221 static int on_controller_gone(sd_bus_track
*track
, void *userdata
) {
227 log_unit_debug(UNIT(s
), "Controller %s disappeared from bus.", s
->controller
);
228 unit_add_to_dbus_queue(UNIT(s
));
229 s
->controller
= mfree(s
->controller
);
232 s
->controller_track
= sd_bus_track_unref(s
->controller_track
);
237 int bus_scope_track_controller(Scope
*s
) {
242 if (!s
->controller
|| s
->controller_track
)
245 r
= sd_bus_track_new(UNIT(s
)->manager
->api_bus
, &s
->controller_track
, on_controller_gone
, s
);
249 r
= sd_bus_track_add_name(s
->controller_track
, s
->controller
);
251 s
->controller_track
= sd_bus_track_unref(s
->controller_track
);